VYPR

Maven package

org.jenkins-ci.plugins/publish-over-ftp

pkg:maven/org.jenkins-ci.plugins/publish-over-ftp

Vulnerabilities (2)

  • CVE-2022-29051Apr 12, 2022
    affected < 1.17fixed 1.17

    Missing permission checks in Jenkins Publish Over FTP Plugin 1.16 and earlier allow attackers with Overall/Read permission to connect to an FTP server using attacker-specified credentials.

  • CVE-2022-29050Apr 12, 2022
    affected < 1.17fixed 1.17

    A cross-site request forgery (CSRF) vulnerability in Jenkins Publish Over FTP Plugin 1.16 and earlier allows attackers to connect to an FTP server using attacker-specified credentials.